Page 1 of 1

Init Security Concerns...

Posted: 24 Nov 2018, 15:37
by n0ctilucient
Love it or hate it Systemd is here to stay.
(Still mileage may very, and so as with many things... "the devil :evil: is in the details")

Therefore with that said, this could mean... there could be cause for concern.

"Consider" this... @ one time, there were concerns about the dismissive mentality that still persists in the systemd project to this day.
Systemd's "we don't make mistakes" attitude towards security can be seen in other places...

https://www.agwa.name/blog/post/how_to_ ... _one_tweet
From Linus...
None of this "I can do whatever I want, others have to clean up after me" crap.
https://lkml.org/lkml/2014/4/2/420

"Consider" also... the problem of mitigating an increased exploit Attack surface .
The systemd developers understand none of this, opting to cram an enormous amount of unnecessary complexity into PID 1, which runs as root and is written in a memory-unsafe language.

https://www.agwa.name/blog/post/how_to_ ... _one_tweet